CVE-2023-53707

Source
https://cve.org/CVERecord?id=CVE-2023-53707
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-53707.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2023-53707
Downstream
BELL (1)
DEBIAN (1)
ROOT (2)
SUSE (13)
UBUNTU (1)
Related
Published
2025-10-22T13:23:43Z
Modified
2026-10-05T02:31:01Z
Severity
  • 7.8 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
drm/amdgpu: Fix integer overflow in amdgpu_cs_pass1
Details

In the Linux kernel, the following vulnerability has been resolved:

drm/amdgpu: Fix integer overflow in amdgpu_cs_pass1

The type of size is unsigned int, if size is 0x40000000, there will be an integer overflow, size will be zero after size *= sizeof(uint32_t), will cause uninitialized memory to be referenced later.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/53xxx/CVE-2023-53707.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
d38ceaf99ed015f2a0b9af3499791bd3a3daae21
Fixed
8fb035232b505ab12119adf78f5fc1f93f2b7e24
Fixed
6e03634f44cd5988ee5b6cdd4f849e73762095e7
Fixed
9f55d300541cb5b435984d269087810581580b00
Fixed
c3deb091398e9e469d08dd1599b6d76fd6b29df8
Fixed
87c2213e85bd81e4a9a4d0880c256568794ae388

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-53707.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
4.2.0
Fixed
5.10.271
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.222
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.47
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.4.12

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-53707.json"